90 likes | 97 Views
The Trusted Network · · · LEFIS PKI · · · 2 nd June, 2006 · Sofia by Leonardo Catalinas · May 2006 < lcg@unizar.es >. Simplest authentication methods and unprotected data traffic implies: Poor user's confidentiality Poorly verified user's identity Unverified data integrity.
E N D
The Trusted Network · · ·LEFIS PKI· · · 2nd June, 2006 · Sofia by Leonardo Catalinas · May 2006 <lcg@unizar.es>
Simplest authentication methods and unprotected data traffic implies: Poor user's confidentiality Poorly verified user's identity Unverified data integrity Internet security today
well-authenticated access to resources Digital Signature What we can do? • private access which prevents non related people to spy member's actions
Our own PKI Open Source Software Interoperability Cross CA Secure and identified web access Signed documents Signed e-mail Tools • Use of Public Key Technologies to increase security .
PKI Design • PKI Design… • APTICE • Certification • Authority • Trust based in APTICE CA • Hierarchical • Permits building multiple PKIs Lays Trust Base • Capable of recognize other PKIs • Cross Certification between PKIs • LEFIS • Subordinated CA signs delegates • The • LEFIS • PKI • APTICE CA • LEFIS • Registration • Authorities Lays Trust Base manages • ORG1 • PKI • ORG2 • PKI • LEFIS • PKI Used Trust Trust Trust
PKI Enrollment • But, how to get a LEFIS Certificate? • PDF Guide in english • CSR Generation Adv. • Easy Web Interface • Local Keys Generation • Platform independent • LEFIS_MAN_EN_ • ENROLL_LEFIS_PKI.pdf
Moodle Is a ‘CMS’ WG Activities Support User’s communication Dynamic contents Workshops Tasks Wiki LEFIS Web Site Aims • Public Side (Informative) • Private Side (for validated members)
Moodle + PKI = MoodlePKI An extension designed and developed by ourselves Makes Moodle able to identify users by their Certificates Certificates can be easily obtained in our PKI public web page We plan to recognize Certificates signed by other PKIs or CAs LEFIS' Innovative idea